Categories: Security News

Apple Released a Critical Security Updates for iOS 11.2.1

Apple released a new Critical security update for iOS 11.2.1 and Apple products such as tvOS, watchOS, macOS.

This Apple security update for remote attack flaw that leads to an attacker may be able to unexpectedly alter application state.

Improper input validation was the root cause of this vulnerability and Message handling issue was addressed with improved input validation.

This update available for iPhone 5s and later, iPad Air and later, and iPod touch 6th generation.

Apple tvOS 11.2.1

Security patch also released for Apple TV 4K and Apple TV (4th generation) and the same vulnerability has been discovered for this Apple TV based.

Security Researcher Tian Zhang has been reported this vulnerability to Apple and CVE-2017-139;03 has been assigned.

Also Read:  Microsoft Released New Security Patch Updates for More than 30 Critical Security Issues

Apple  iCloud for Windows 7.2

A vulnerability that discovered in APNs Server Leads to an attacker in a privileged network position can track a user which has been identified in the use of client certificates with help of revised protocol.

A team(FURIOUSMAC ) from  United States Naval Academy has reported this vulnerability to apple and CVE-2017-13864 has been Assigned.

Also, another critical vulnerability Discovered that performs maliciously crafted web content may lead to arbitrary code execution.

This vulnerability has been patched and adds into common vulnerability database.

  • CVE-2017-7156: an anonymous researcher
  • CVE-2017-7157: an anonymous researcher
  • CVE-2017-13856: Jeonghoon Shin
  • CVE-2017-13870: an anonymous researcher
  • CVE-2017-13866: an anonymous researcher
Name and information linkAvailable forRelease date
iCloud for Windows 7.2Windows 7 and later13 Dec 2017
tvOS 11.2.1Apple TV 4K and Apple TV (4th generation)13 Dec 2017
iOS 11.2.1iPhone 5s and later, iPad Air and later, and iPod touch 6th generation13 Dec 2017

Keeping your software up to date is one of the most important things you can do to maintain your Apple product’s security. Apple said.

Balaji

BALAJI is an Ex-Security Researcher (Threat Research Labs) at Comodo Cybersecurity. Editor-in-Chief & Co-Founder - Cyber Security News & GBHackers On Security.

Recent Posts

Hackers Exploit NFC Technology to Steal Money from ATMs and POS Terminals

In a disturbing trend, cybercriminals, predominantly from Chinese underground networks, are exploiting Near Field Communication…

13 hours ago

Threat Actors Leverage TAG-124 Infrastructure to Deliver Malicious Payloads

In a concerning trend for cybersecurity, multiple threat actors, including ransomware groups and state-sponsored entities,…

13 hours ago

Ransomware Actors Ramp Up Attacks Organizations with Emerging Extortion Trends

Unit 42’s 2025 Global Incident Response Report, ransomware actors are intensifying their cyberattacks, with 86%…

13 hours ago

New SMS Phishing Attack Weaponizes Google AMP Links to Evade Detection

Group-IB’s High-Tech Crime Trends Report 2025 reveals a sharp 22% surge in phishing websites, with…

13 hours ago

Russian Hackers Exploit Microsoft OAuth 2.0 to Target Organizations

Cybersecurity firm Volexity has tracked a series of highly targeted attacks by suspected Russian threat…

13 hours ago

Hackers Weaponize Google Forms to Bypass Email Security and Steal Login Credentials

Threat actors are increasingly leveraging Google Forms, the tech giant’s widely-used form and quiz-building tool,…

15 hours ago